PT-2026-55982 · Gimp · Gimp
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GIMP (affected versions not specified)
Description
The PlayStation TIM loader, which handles PlayStation image files, contains an integer overflow when calculating the size of the Color Look-Up Table (CLUT). This occurs during the multiplication of the
num colors and num cluts variables, both of which are 16-bit unsigned short integers. A specially crafted image file can trigger this overflow, leading to undefined behavior and causing the plug-in to abort, which results in a denial of service.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gimp